Administrator Guide

Technical support and resources
9 Telemetry Streaming with iDRAC9 – Metric Reports Using Rsyslog | Document ID: 362
3.1.2 Viewing rsyslog CA certificate using RACADM
# racadm -r 192.168.1.2 -u root -p calvin --nocertwarn sslcertview -t 8 -i 1
Serial Number : 5D83A7A11856C555
Subject Information:
Common Name (CN) : example.delllabs.net
Issuer Information:
Common Name (CN) : example.delllabs.net
Valid From : Sep 19 16:06:59 2019 GMT
Valid To : Sep 16 16:07:02 2029 GMT
3.1.3 Deleting rsyslog CA certificate using RACADM
Use the following sample command to delete the CA certificate if any reason for deletion arises.
# racadm -r 192.168.1.2 -u root -p calvin --nocertwarn sslcertdelete -t 8 -i 1
RSYSLOG303: The telemetry Rsyslog Server CA certificate is successfully deleted.
3.2 Example rsyslog server configuration for TLS
/etc/rsyslog.d/tls.conf:
$ModLoad imtcp
# make gtls driver the default
$DefaultNetstreamDriver gtls
# certificate files
$DefaultNetstreamDriverCAFile /etc/rsyslog-keys/ca.pem
$DefaultNetstreamDriverCertFile /etc/rsyslog-keys/telemetry3-cert.pem
$DefaultNetstreamDriverKeyFile /etc/rsyslog-keys/telemetry3-key.pem
$ModLoad imtcp # TCP listener
$InputTCPServerStreamDriverMode 1 # run driver in TLS-only mode
$InputTCPServerStreamDriverAuthMode anon
$InputTCPServerRun 6514 # start up listener at port 10514
$template DynamicFile,"/var/log/loghost/%HOSTNAME%.log"
*.* -?DynamicFile